Compliance Node Overview
MITRE ATT&CK T1056.001 (Keylogging) is an Enterprise Collection and Credential Access sub-technique of T1056 (Input Capture). Adversaries may log user keystrokes to intercept credentials as the user types them. Keylogging is likely to be used to acquire credentials for new access opportunities when OS Credential Dumping efforts are not effective, and may require an adversary to intercept keystrokes on a system for a substantial period of time before credentials can be successfully captured. Affected platforms: Windows, macOS, Linux, Network.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1056/001/
SHA-256 integrity: d745f129a0eda5a62bb14a83079a57f6a5bc7355476086cc3ecec152f377e1ef
Primary Citations — 5 traced to source
- MITRE ATT&CK Technique T1056.001: Keylogging (https://attack.mitre.org/techniques/T1056/001/)
- MITRE ATT&CK Tactic TA0009: Collection (https://attack.mitre.org/tactics/TA0009/)
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.